Fake CAPTCHA PDFs Spread Lumma Stealer via Webflow, GoDaddy, and Other Domains




Cybersecurity researchers have uncovered a widespread phishing campaign that uses fake CAPTCHA images shared via PDF documents hosted on Webflow’s content delivery network (CDN) to deliver the Lumma stealer malware.
Netskope Threat Labs said it discovered 260 unique domains hosting 5,000 phishing PDF files that redirect victims to malicious websites.
“The attacker uses SEO to trick victims into



Source link

Leave a Reply

Your email address will not be published. Required fields are marked *